0PricingLogin
Cyber Security Academy · Lesson

C2 Over HTTPS and DNS Tunneling

Detect beaconing patterns, domain generation algorithms, DNS-over-HTTPS C2, and HTTPS command channels.

C2 Communication Fundamentals

Command and Control (C2) is the channel through which attackers issue commands to compromised systems and receive data. Modern C2 blends with legitimate traffic to evade detection, using protocols (HTTPS, DNS) and infrastructure (CDNs, cloud services) that are difficult to block without collateral damage.

C2 Over HTTPS

HTTPS C2 wraps commands and responses in TLS-encrypted HTTP traffic. The beacon periodically polls a C2 server with GET requests; commands are returned in HTTP responses. Jitter (random variation in beacon interval) prevents the regular timing pattern that detects synchronous beaconing.

All lessons in this course

  1. APT Lifecycle: Initial Access to Exfiltration
  2. Fileless Malware and Living-in-Memory Techniques
  3. C2 Over HTTPS and DNS Tunneling
  4. Threat Attribution and Campaign Tracking
← Back to Cyber Security Academy